Skip to content

Commit 74df611

Browse files
committed
SAST Unicode and Shell Check tasks for Konflux
1 parent 3c53383 commit 74df611

File tree

2 files changed

+96
-0
lines changed

2 files changed

+96
-0
lines changed

.tekton/koku-frontend-pull-request.yaml

+48
Original file line numberDiff line numberDiff line change
@@ -306,6 +306,54 @@ spec:
306306
workspaces:
307307
- name: workspace
308308
workspace: workspace
309+
- name: sast-shell-check
310+
params:
311+
- name: image-digest
312+
value: $(tasks.build-image-index.results.IMAGE_DIGEST)
313+
- name: image-url
314+
value: $(tasks.build-image-index.results.IMAGE_URL)
315+
runAfter:
316+
- build-image-index
317+
taskRef:
318+
params:
319+
- name: name
320+
value: sast-shell-check
321+
- name: bundle
322+
value: quay.io/konflux-ci/tekton-catalog/task-sast-shell-check:0.1@sha256:77724eb55158ed966316e1d478f7e208dbf98202231d8ebf20e0f55ad92f667c
323+
- name: kind
324+
value: task
325+
resolver: bundles
326+
when:
327+
- input: $(params.skip-checks)
328+
operator: in
329+
values:
330+
- "false"
331+
workspaces:
332+
- name: workspace
333+
workspace: workspace
334+
- name: sast-unicode-check
335+
params:
336+
- name: image-url
337+
value: $(tasks.build-image-index.results.IMAGE_URL)
338+
runAfter:
339+
- build-image-index
340+
taskRef:
341+
params:
342+
- name: name
343+
value: sast-unicode-check
344+
- name: bundle
345+
value: quay.io/konflux-ci/tekton-catalog/task-sast-unicode-check:0.1@sha256:b1a9af196a79baa75632ef494eb6db987f57e870d882d47f5b495e1441c01e3b
346+
- name: kind
347+
value: task
348+
resolver: bundles
349+
when:
350+
- input: $(params.skip-checks)
351+
operator: in
352+
values:
353+
- "false"
354+
workspaces:
355+
- name: workspace
356+
workspace: workspace
309357
- name: deprecated-base-image-check
310358
params:
311359
- name: IMAGE_URL

.tekton/koku-frontend-push.yaml

+48
Original file line numberDiff line numberDiff line change
@@ -303,6 +303,54 @@ spec:
303303
workspaces:
304304
- name: workspace
305305
workspace: workspace
306+
- name: sast-shell-check
307+
params:
308+
- name: image-digest
309+
value: $(tasks.build-image-index.results.IMAGE_DIGEST)
310+
- name: image-url
311+
value: $(tasks.build-image-index.results.IMAGE_URL)
312+
runAfter:
313+
- build-image-index
314+
taskRef:
315+
params:
316+
- name: name
317+
value: sast-shell-check
318+
- name: bundle
319+
value: quay.io/konflux-ci/tekton-catalog/task-sast-shell-check:0.1@sha256:77724eb55158ed966316e1d478f7e208dbf98202231d8ebf20e0f55ad92f667c
320+
- name: kind
321+
value: task
322+
resolver: bundles
323+
when:
324+
- input: $(params.skip-checks)
325+
operator: in
326+
values:
327+
- "false"
328+
workspaces:
329+
- name: workspace
330+
workspace: workspace
331+
- name: sast-unicode-check
332+
params:
333+
- name: image-url
334+
value: $(tasks.build-image-index.results.IMAGE_URL)
335+
runAfter:
336+
- build-image-index
337+
taskRef:
338+
params:
339+
- name: name
340+
value: sast-unicode-check
341+
- name: bundle
342+
value: quay.io/konflux-ci/tekton-catalog/task-sast-unicode-check:0.1@sha256:b1a9af196a79baa75632ef494eb6db987f57e870d882d47f5b495e1441c01e3b
343+
- name: kind
344+
value: task
345+
resolver: bundles
346+
when:
347+
- input: $(params.skip-checks)
348+
operator: in
349+
values:
350+
- "false"
351+
workspaces:
352+
- name: workspace
353+
workspace: workspace
306354
- name: deprecated-base-image-check
307355
params:
308356
- name: IMAGE_URL

0 commit comments

Comments
 (0)